GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,350
Erlang
31
GitHub Actions
22
Go
2,119
Maven
5,000+
npm
3,778
NuGet
680
pip
3,459
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
441 advisories
Filter by severity
An Incorrect Default Permissions vulnerability in Juniper Networks Junos OS and Junos OS Evolved...
Moderate
Unreviewed
CVE-2024-21615
was published
Apr 12, 2024
RuoYi has insecure permissions
Moderate
CVE-2024-57438
was published
for
com.ruoyi:ruoyi
(Maven)
Jan 29, 2025
In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances...
Moderate
Unreviewed
CVE-2024-29967
was published
Apr 19, 2024
Brocade SANnav OVA before v2.3.1 and v2.3.0a have an insecure file permission setting that makes...
Moderate
Unreviewed
CVE-2024-29962
was published
Apr 19, 2024
Insecure Permissions vulnerability in themesebrand Chatvia v.5.3.2 allows a remote attacker to...
Moderate
Unreviewed
CVE-2024-40514
was published
Jan 17, 2025
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2025-24140
was published
Jan 28, 2025
Insecure permissions in the XNetSocketClient component of XINJE XDPPro.exe v3.2.2 to v3.7.17c...
Moderate
Unreviewed
CVE-2024-52783
was published
Jan 15, 2025
snowflake-connector-python vulnerable to insecure cache files permissions
Moderate
CVE-2025-24795
was published
for
snowflake-connector-python
(pip)
Jan 29, 2025
Snowflake.Data has weak temporary files permissions
Moderate
CVE-2025-24788
was published
for
Snowflake.Data
(NuGet)
Jan 29, 2025
Snowflake JDBC uses insecure temporary credential cache file permissions
Moderate
CVE-2025-24790
was published
for
net.snowflake:snowflake-jdbc
(Maven)
Jan 29, 2025
Local privilege escalation due to insecure folder permissions. The following products are...
Moderate
Unreviewed
CVE-2025-24826
was published
Jan 28, 2025
There is a permissions and access control vulnerability in ZXCLOUD IRAI.An attacker can elevate...
Moderate
Unreviewed
CVE-2024-22062
was published
Jul 9, 2024
Cache confusion in Jenkins Eiffel Broadcaster Plugin
Moderate
CVE-2025-24400
was published
for
com.axis.jenkins.plugins.eiffel:eiffel-broadcaster
(Maven)
Jan 22, 2025
Insecure permissions in the ps_customer table of Prestashop scquickaccounting before v3.7.3...
Moderate
Unreviewed
CVE-2023-30281
was published
May 16, 2023
A vulnerability was found in Samba from version (including) 4.9 to versions before 4.9.6 and 4.10...
Moderate
Unreviewed
CVE-2019-3870
was published
May 13, 2022
Permission control vulnerability in the Connectivity module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2024-56440
was published
Jan 8, 2025
Vulnerability of improper permission control in the Gallery module
Impact: Successful...
Moderate
Unreviewed
CVE-2023-52954
was published
Jan 8, 2025
IBM OpenPages 9.0 could allow an authenticated user to obtain sensitive information such as...
Moderate
Unreviewed
CVE-2024-43176
was published
Jan 9, 2025
PVH guests have their ACPI tables constructed by the toolstack. The
construction involves...
Moderate
Unreviewed
CVE-2024-45819
was published
Dec 19, 2024
A permissions issue was addressed to help ensure Personas are always protected This issue is...
Moderate
Unreviewed
CVE-2024-23295
was published
Mar 8, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in tvOS 17.1,...
Moderate
Unreviewed
CVE-2023-42953
was published
Feb 21, 2024
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The...
Moderate
Unreviewed
CVE-2024-22085
was published
Mar 20, 2024
Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows...
Moderate
Unreviewed
CVE-2023-21513
was published
Jun 28, 2023
This issue was addressed with improved entitlements. This issue is fixed in iOS 16.5 and iPadOS...
Moderate
Unreviewed
CVE-2023-32404
was published
Jun 23, 2023
ProTip!
Advisories are also available from the
GraphQL API